Sipwise software platform suffers from multiple authenticated stored and reflected cross site scripting vulnerabilities when input passed via several parameters to several scripts is not properly sanitized before being returned…
The Sipwise application interface allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. This can be exploited to perform certain actions…
Sipwise C5 NGCP CSC – ‘Multiple’ Stored/Reflected Cross-Site Scripting (XSS)
DzzOffice 2.02.1 – ‘Multiple’ Cross-Site Scripting (XSS)
GetSimple CMS My SMTP Contact Plugin 1.1.2 – CSRF to Stored XSS to RCE
Moodle 3.10.3 – ‘url’ Persistent Cross Site Scripting
CMS Made Simple version 2.2.15 suffers from a reflective cross site scripting vulnerability.
HEUR.Trojan.Win32.Generic malware suffers from an insecure permissions vulnerability.
IM-Worm.Win32.Bropia.aa malware suffers from an insecure permissions vulnerability.
RemoteClinic version 2.0 suffers from multiple persistent cross site scripting vulnerabilities.